Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Gitlab

Gitlabвеб-платформа для управления проектами и репозиториями программного кода, работа которой основана на популярной системе контроля версий Git.

Релизный цикл, информация об уязвимостях

Продукт: Gitlab
Вендор: gitlab

График релизов

19.019.119.220262027

Релизные элементы

KBВерсияБилдДата доступности
17.0.817.0.8
17.0.717.0.7
17.0.617.0.6
17.0.517.0.5
17.0.417.0.4
17.0.317.0.3
17.0.217.0.2
17.0.117.0.1
17.0.017.0.0

Показывать по

Недавние уязвимости Gitlab

Количество 5 943

nvd логотип

CVE-2022-3286

почти 4 года назад

Lack of IP address checking in GitLab EE affecting all versions from 14.2 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows a group member to bypass IP restrictions when using a deploy token

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2022-3283

почти 4 года назад

A potential DOS vulnerability was discovered in GitLab CE/EE affecting ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2022-3283

почти 4 года назад

A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 While cloning an issue with special crafted content added to the description could have been used to trigger high CPU usage.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2022-3279

почти 4 года назад

An unhandled exception in job log parsing in GitLab CE/EE affecting al ...

CVSS3: 2.7
EPSS: Низкий
nvd логотип

CVE-2022-3279

почти 4 года назад

An unhandled exception in job log parsing in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows an attacker to prevent access to job logs

CVSS3: 2.7
EPSS: Низкий
debian логотип

CVE-2022-3067

почти 4 года назад

An issue has been discovered in the Import functionality of GitLab CE/ ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2022-3067

почти 4 года назад

An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects' content given the project's ID.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2022-3066

почти 4 года назад

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2022-3066

почти 4 года назад

An issue has been discovered in GitLab affecting all versions starting from 10.0 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an unauthorised user to create issues in a project.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2022-3060

почти 4 года назад

Improper control of a resource identifier in Error Tracking in GitLab ...

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2022-3286

Lack of IP address checking in GitLab EE affecting all versions from 14.2 prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows a group member to bypass IP restrictions when using a deploy token

CVSS3: 5.3
0%
Низкий
почти 4 года назад
debian логотип
CVE-2022-3283

A potential DOS vulnerability was discovered in GitLab CE/EE affecting ...

CVSS3: 7.5
1%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-3283

A potential DOS vulnerability was discovered in GitLab CE/EE affecting all versions before before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1 While cloning an issue with special crafted content added to the description could have been used to trigger high CPU usage.

CVSS3: 7.5
1%
Низкий
почти 4 года назад
debian логотип
CVE-2022-3279

An unhandled exception in job log parsing in GitLab CE/EE affecting al ...

CVSS3: 2.7
1%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-3279

An unhandled exception in job log parsing in GitLab CE/EE affecting all versions prior to 15.2.5, 15.3 prior to 15.3.4, and 15.4 prior to 15.4.1 allows an attacker to prevent access to job logs

CVSS3: 2.7
1%
Низкий
почти 4 года назад
debian логотип
CVE-2022-3067

An issue has been discovered in the Import functionality of GitLab CE/ ...

CVSS3: 6.5
1%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-3067

An issue has been discovered in the Import functionality of GitLab CE/EE affecting all versions starting from 14.4 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an authenticated user to read arbitrary projects' content given the project's ID.

CVSS3: 6.5
1%
Низкий
почти 4 года назад
debian логотип
CVE-2022-3066

An issue has been discovered in GitLab affecting all versions starting ...

CVSS3: 5.4
1%
Низкий
почти 4 года назад
nvd логотип
CVE-2022-3066

An issue has been discovered in GitLab affecting all versions starting from 10.0 before 15.2.5, all versions starting from 15.3 before 15.3.4, all versions starting from 15.4 before 15.4.1. It was possible for an unauthorised user to create issues in a project.

CVSS3: 5.4
1%
Низкий
почти 4 года назад
debian логотип
CVE-2022-3060

Improper control of a resource identifier in Error Tracking in GitLab ...

CVSS3: 7.3
1%
Низкий
почти 4 года назад

Уязвимостей на страницу


Поделиться